FAQSingapore PDPADNC checking

Singapore PDPA DNC checking FAQ

Check the Singapore DNC Registry before sending covered telemarketing messages to Singapore telephone numbers unless you can rely on clear and unambiguous consent in evidential form or a supported exclusion.

Use this FAQ to brief campaign operations, CRM, sales, and vendor teams on register selection, number format, 21-day result validity, on-behalf checks, consent records, and opt-out handling.

Author
Sorena AI
Published
May 9, 2026
Updated
May 9, 2026
Questions
5

Structured answer sets in this page tree.

Primary sources
5

Cited legal and guidance references.

Publication metadata
Sorena AI
Published May 9, 2026
Updated May 9, 2026
Overview

The Singapore PDPA Do Not Call provisions apply to specified marketing messages sent to Singapore telephone numbers. For campaign launch, the operational question is whether the message is covered, whether valid consent or an exclusion applies, and if not, whether the relevant DNC Registry check is current enough to use.

Search this module

Find a question or answer quickly

5 of 5 questions
Question 1

When must a team check the Singapore DNC Registry before sending marketing messages?

A team should check the DNC Registry before sending a specified marketing voice call, text message, or fax to a Singapore telephone number unless it has clear and unambiguous consent in evidential form for that message to that number, or the message is outside the DNC checking duty because a supported exclusion applies.

Do the check at campaign execution time, not only when a lead is first collected. PDPC guidance says the check is tied to sending the specified message, and DNC Registry results are valid for 21 days from receipt. If the campaign will continue after that window, recheck before continuing telemarketing activity.

Treat third-party lead lists the same way: the sender still needs either usable consent evidence for that sender and number, or a current DNC result showing the number is not listed in the relevant register.

  • For voice campaigns, check the No Voice Call Register unless clear and unambiguous consent or a supported exclusion applies.
  • For SMS, MMS, and other text campaigns sent to Singapore telephone numbers, check the No Text Message Register unless clear and unambiguous consent or a supported exclusion applies.
  • For fax campaigns, check the No Fax Message Register unless clear and unambiguous consent or a supported exclusion applies.
  • Record the result receipt date because the 21-day validity window runs from receipt of results, not from list upload or campaign planning.
Citations
Question 2

Which DNC registers and telephone-number format should campaign systems use?

Route the campaign channel to the matching register: No Voice Call Register for phone calls, No Text Message Register for texts including SMS and MMS, and No Fax Message Register for faxes. PDPC's business-rules page also says submitted numbers are checked against all three registers, so store the per-register status instead of reducing the result to a single allowed or blocked flag.

For system validation, the DNC checking interface accepts only 8-digit numbers starting with 3, 6, 8, or 9. Reject, normalize, or manually review other formats before upload so rejected numbers are not mistaken for cleared numbers.

For small checks, PDPC describes Small Number Lookup for up to 10 telephone numbers with immediate results. For larger lists, PDPC describes Bulk Filtering using a CSV file with a single column of 8-digit telephone numbers, with results available within 24 hours.

  • Store the original campaign channel, the submitted 8-digit number, the DNC result for each register, and any rejected-number reason.
  • Do not treat a rejected or invalid-format number as approved for sending.
  • Use the result receipt timestamp to calculate the end of the 21-day validity window for that campaign run.
Citations
Question 4

How should teams handle on-behalf checks, vendors, and third-party checkers?

If an account holder checks the DNC Registry on behalf of another organisation, PDPC's business-rules page says the organisation names should be indicated during account creation and can be amended later. For bulk filtering, retain the On Behalf List output because it records the organisations on whose behalf the check was conducted at submission time.

Do not assume outsourcing removes sender responsibility. PDPC guidance treats the person who actually sends, causes, or authorises the specified message as a sender. A brand, marketing agency, and call centre can all fall within the sender analysis depending on the arrangement.

For third-party DNC checkers, keep the checker output, date received, expiry date, and accuracy assurances. PDPC's business page notes that it does not endorse third-party checkers and says liability is on third-party checkers for DNC infringements resulting from erroneous information.

  • Contractually require vendors to use the correct campaign channel, DNC register result, and 21-day validity window.
  • Keep the on-behalf declaration and output with the campaign approval record.
  • Escalate any campaign where the brand, agency, and call centre disagree about who authorised the message or which entity's consent evidence is being relied on.
Citations
Question 5

How should opt-outs and excluded messages affect DNC checking?

Opt-outs must be handled separately from DNC checking. PDPC's business page says organisations must provide opt-out information using the same medium and have 21 days after receiving an opt-out request to ensure marketing messages are no longer sent to the individual's telephone number.

A later DNC result should not override an opt-out or withdrawal record. If a person has withdrawn consent or opted out for the relevant sender, number, and channel, suppress the number for that scope even if a register check would otherwise allow sending.

Excluded messages should be used narrowly. Grounded examples include service or reminder messages for services bought by the individual, market survey or research messages, charitable or religious causes, and B2B messages sent to an organisation for the receiving organisation's purposes. The DNC advisory also warns that if a message mixes an excluded purpose with a non-excluded marketing purpose, it can still be a specified message requiring DNC compliance.

  • Keep opt-out source, timestamp, channel, number, sender, and scope so suppression rules match the request.
  • Classify service, survey, charitable, religious, and B2B messages before campaign launch, and reclassify if promotional copy is added.
  • For ongoing-relationship text or fax exemptions, verify the supported conditions before relying on them, including whether the recipient has withdrawn consent, opted out, or otherwise indicated no consent.
Citations
Primary sources

References and citations

pdpc.gov.sg
Referenced sections
  • Supports opt-out handling, covered message types, and PDPC's listed exception examples for business users.
"you have 21 days to ensure that marketing messages are no longer sent"
pdpc.gov.sg
Referenced sections
  • Supports account setup for checks conducted on behalf of other organisations and the On Behalf List bulk-filtering output.
"the list of organisations that you are conducting the check on behalf of"
Related guides

Explore more topics

Singapore PDPA Anonymisation and DPIA Records
Build Singapore PDPA anonymisation and DPIA records around PDPC guidance: release model, re-identification risk, data flows, action plans, safeguards, and monitoring.
Singapore PDPA anonymisation FAQ
FAQ on anonymisation under the Singapore PDPA: de-identification, pseudonymisation, re-identification risk, when PDPA may no longer apply, and evidence records.
Singapore PDPA Applicability Test
Test whether Singapore PDPA obligations apply by checking personal data, organisation role, data intermediary status, public agency and individual boundaries, and business contact information.
Singapore PDPA Breach Notification Playbook
A grounded Singapore PDPA breach-notification playbook covering assessment, notifiable-breach thresholds, PDPC and affected-individual notification steps, roles, records, and citations.
Singapore PDPA breach notification thresholds FAQ
FAQ on Singapore PDPA notifiable data breach tests: significant harm, significant scale, 500 affected individuals, assessment timing, PDPC notices, and affected-individual notices.
Singapore PDPA Breach Notification Workflow
A grounded Singapore PDPA workflow for containing a personal data breach, assessing notifiability, notifying PDPC or affected individuals, and retaining evidence.
Singapore PDPA Compliance Checklist
A grounded Singapore PDPA checklist for scope, DPO accountability, consent, data intermediaries, breach notification, DNC checks, transfers, and evidence records.
Singapore PDPA Compliance Guide
Build a Singapore PDPA compliance plan covering DPO accountability, consent and notification, protection, retention, access and correction, transfers, breach notification, and DNC checks.
Singapore PDPA Consent and Deemed Consent Workflow
Choose express consent, deemed consent by conduct, contractual necessity, notification, or the legitimate interests exception under Singapore PDPA with grounded intake fields and evidence records.
Singapore PDPA Consent, Notification and Purpose Rules
How Singapore PDPA consent, notification, purpose limitation, deemed consent, withdrawal, and consent exceptions should be handled in product and privacy workflows.
Singapore PDPA Cross-Border Transfers
Grounded Singapore PDPA guidance for overseas personal data transfers, comparable protection, ASEAN MCCs, APEC certifications, vendor roles, and evidence records.
Singapore PDPA Data Breach Notification Thresholds
Grounded Singapore PDPA breach notification thresholds covering significant harm, the 500-individual significant-scale test, assessment records, and notification timing.
Singapore PDPA Data Intermediaries FAQ
FAQ guidance on Singapore PDPA data intermediary roles, direct obligations, organisation accountability, contracts, retention, protection, and breach escalation.
Singapore PDPA Data Intermediary Responsibilities
Practical Singapore PDPA guide to data intermediary role boundaries, organisation accountability, protection, retention, breach escalation, and contract evidence.
Singapore PDPA Deadlines and Compliance Calendar
A grounded Singapore PDPA compliance calendar for breach notification, DNC checks, access and correction requests, retention reviews, and DPMP maintenance.
Singapore PDPA Deemed Consent and Legitimate Interests
How to apply Singapore PDPA deemed consent by conduct, contractual necessity, notification, and legitimate interests with opt-out, adverse-effect, disclosure, and assessment records.
Singapore PDPA Deemed Consent FAQ
FAQ on Singapore PDPA deemed consent by conduct, contractual necessity, notification, opt-out periods, adverse-effect assessment, withdrawal, and direct-marketing limits.
Singapore PDPA DNC and Marketing Messages Guide
A grounded Singapore PDPA guide to DNC checks, specified marketing messages, Singapore telephone numbers, consent evidence, opt-outs, sender duties, and excluded messages.
Singapore PDPA DNC Marketing Checks
Operational checklist for Singapore PDPA DNC marketing checks: account evidence, register status, 21-day result validity, consent evidence, and campaign owner records.
Singapore PDPA DNC Marketing Workflow
Workflow for Singapore PDPA DNC marketing campaigns: classify specified messages, check Singapore telephone numbers, document consent, suppress opt-outs, and approve sends.
Singapore PDPA DPIAs: when to run and what to document
FAQ-style implementation guidance on Singapore PDPA DPIAs, including when PDPC guidance recommends them, data-flow mapping, risk treatment, DPO review, and evidence records.
Singapore PDPA DPMP Accountability FAQ | DPO, Policies, Evidence
FAQ for implementing Singapore PDPA accountability through a DPMP: DPO designation, policies, evidence, training, monitoring, incident logs, and review records.
Singapore PDPA DPMP Accountability Guide
Build a Singapore PDPA Data Protection Management Programme with DPO ownership, policies, data inventories, DPIAs, training, monitoring, breach logs, and review records.
Singapore PDPA FAQ: scope, DPO, consent, breaches and DNC
FAQ answers for Singapore PDPA implementation, covering scope, accountability, consent, access and correction, security, retention, transfers, data intermediaries, breach notification, and DNC checks.
Singapore PDPA legitimate interests FAQ
FAQ guidance on Singapore PDPA legitimate interests: assessment fields, adverse effects, mitigation, balancing, disclosure, records, and marketing limits.
Singapore PDPA NRIC Handling FAQ
FAQ guidance on when Singapore organisations may collect, use, disclose, retain, mask, or replace NRIC and other national identification numbers under PDPC guidance.
Singapore PDPA NRIC Handling Rules
When Singapore organisations may collect, use, disclose, retain, mask, or replace NRIC numbers under PDPC guidance.
Singapore PDPA Penalties and Enforcement Cases
How PDPC enforcement under Singapore's PDPA works: directions, voluntary undertakings, published decisions, financial penalty caps, and implementation lessons from cases.
Singapore PDPA Penalties and Fines
Singapore PDPA penalty ceilings, PDPC directions, undertakings, breach notification context, and practical controls grounded in official PDPC and Singapore Statutes sources.
Singapore PDPA Privacy Policy Template
A Singapore PDPA privacy policy template for writing notices, DPO contact details, access and correction routes, retention, transfers, protection, withdrawal, and complaint handling without overclaiming compliance.
Singapore PDPA Requirements: Core Obligations
Map Singapore PDPA obligations across consent, notification, access, security, retention, transfers, accountability, breaches, DNC checks, and data intermediaries.
Singapore PDPA Scope, Exclusions, and Data Intermediaries
Classify Singapore PDPA coverage, business contact information, personal or domestic activity, employee acts, and data intermediary obligations with grounded implementation records.
Singapore PDPA Transfer Assessment Workflow
A Singapore PDPA workflow for assessing overseas personal data transfers, comparable protection, ASEAN MCCs, APEC CBPR/PRP certifications, vendor due diligence, onward transfers, and evidence records.
Singapore PDPA Transfer Clauses
Draft Singapore PDPA transfer clauses for overseas vendors, affiliates, data intermediaries, onward transfers, breach support, ASEAN MCCs, and APEC CBPR or PRP evidence.
Singapore PDPA transfer clauses FAQ
FAQ guidance on Singapore PDPA transfer clauses, comparable protection, ASEAN MCCs, APEC CBPR and PRP certifications, onward transfers, and evidence records.
Singapore PDPA Vendor Outsourcing and Contracts
Contract and operating checklist for Singapore PDPA vendor outsourcing: data intermediary status, written terms, security, retention, breach, transfers, sub-contracting, and exit evidence.
Singapore PDPA vs GDPR Comparison
Compare Singapore PDPA and GDPR implementation work across consent, DPO accountability, processors, transfers, breach notification, DNC marketing, rights, retention, and penalties.